CVE-2014-5317: PHP365 365 Links

Medium severity, CVSS 4.3. EPSS: 1.2% chance of exploitation in the next 30 days.

Cross-site scripting (XSS) vulnerability in php365.com 365 Links 3.11 and earlier, 365 Links2 3.11 and earlier, 365 Links+ 2.10 and earlier, and 365 Links2+ 2.10 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Affected products

  • PHP365 365 Links: up to and including 3.11
  • PHP365 365 Links+: up to and including 2.10
  • PHP365 365 LINKS2: up to and including 3.11
  • PHP365 365 Links 2+: up to and including 2.10

Published 2014-09-18. Last modified 2026-06-17.